iobit smartdefrag.exe

IObit.com

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘SmartDefrag’.
Publisher:
IObit.com  (signed and verified)

MD5:
a4842c246ea87be78d7eb7ef2956b8c3

SHA-1:
92997c2d60568581e2f08cafd7c9198aa94f8b18

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 2:12:36 PM UTC  (today)

File size:
3.8 MB (3,996,632 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\iobit\iobit smartdefrag\iobit smartdefrag.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
4/20/2007 2:14:10 PM

Valid to:
4/20/2010 2:14:10 PM

Subject:
E=support@iobit.com, CN=IObit.com, C=CN

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
010000000001120EE9ECF1

File PE Metadata
Compilation timestamp:
4/28/2007 3:44:54 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
49152:MIKi3F1LedW0VXQ8S27HSabrKQ8N1PQqYGWnc//////gabh62YOTTGB:MXQ8frKQ8N1Wc//////gsHvGB

Entry address:
0x1828

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, 98, 50, 65, 00, A1, 8B, 50, 65, 00, C1, E0, 02, A3, 8F, 50, 65, 00, 52, 6A, 00, E8, 49, 20, 25, 00, 8B, D0, E8, 26, 04, 1D, 00, 5A, E8, 84, 03, 1D, 00, E8, 5B, 04, 1D, 00, 6A, 00, E8, 74, 27, 1D, 00, 59, 68, 34, 50, 65, 00, 6A, 00, E8, 23, 20, 25, 00, A3, 93, 50, 65, 00, 6A, 00, E9, 83, 89, 1D, 00, E9, A2, 27, 1D, 00, 33, C0, A0, 7D, 50, 65, 00, C3, A1, 93, 50, 65, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, 90, 01, 00, 00, 0B, C9...
 
[+]

Code size:
2.3 MB (2,441,216 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
SmartDefrag

Command:
"C:\Program Files\iobit\iobit smartdefrag\iobit smartdefrag.exe" \startup


Scan iobit smartdefrag.exe - Powered by Reason Core Security